CVE-2026-18330: Hardcoded Shared RSA-1024 Private Key in TP-Link Archer AX55 v4
A hard-coded cryptographic key vulnerability exists in the web module of TP-Link Archer AX55 v4. A LAN attacker who captures an HTTP login session may use the known shared RSA private key to decrypt the administrator password; the weakened AES session key further reduces the effort required to compromise session confidentiality.
Successful exploitation may disclose the administrator password captured from an HTTP login session and compromise session confidentiality.
Affected Software
Event History
Frequently Asked Questions
Who is exposed to this issue?
The exposed population is LAN-attached attackers who can capture an HTTP login session to the router. The issue is described specifically in the web module of TP-Link Archer AX55 v4.
What does an attacker need to exploit it?
An attacker needs access to the local network and a captured HTTP administrator login session. The known shared RSA-1024 private key can then be used to decrypt the captured administrator password.
What information could be compromised?
Successful exploitation may reveal the administrator password from the captured HTTP login session. The weakened AES session key may also reduce the effort required to compromise session confidentiality.